AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-3312

MEDIUM · CVSS 4.3 EPSS 11.89%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-10-26 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Microsoft. Its EPSS score suggests a 11.9% probability of exploitation in the next 30 days. It may be remotely exploitable.

CVE
CVE-2005-3312
Severity
MEDIUM
CVSS
4.3
EPSS
11.89%
Microsoft

Original NVD Description

The HTML rendering engine in Microsoft Internet Explorer 6.0 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML in corrupted images and other files such as .GIF, JPG, and WAV, which is rendered as HTML when the user clicks on the link, even though the web server response and file extension indicate that it should be treated as a different file type.